The product does not properly anticipate or handle exceptional conditions that rarely occur during normal operation of the product.
Volume of CVEs assigned to CWE-703 and their average CVSS base score over time.
Top CVEs that have been assigned this CWE. A single CVE can have multiple CWE assignments, though many have just one.
153 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2022-22265HIGH An improper check or handling of exceptional conditions in NPU driver prior to SMR Jan-2022 Release 1 allows arbitrary memory write and code execution. | Jan 10, 2022 | 7.8 | 63 | YES | NO |
CVE-2021-25372MEDIUM An improper boundary check in DSP driver prior to SMR Mar-2021 Release 1 allows out of bounds memory access. | Mar 26, 2021 | 6.7 | 60 | YES | NO |
CVE-2021-25370MEDIUM An incorrect implementation handling file descriptor in dpu driver prior to SMR Mar-2021 Release 1 results in memory corruption leading to kernel panic. | Mar 26, 2021 | 4.4 | 54 | YES | NO |
CVE-2024-21894CRITICAL A heap overflow vulnerability in IPSec component of Ivanti Connect Secure (9.x, 22.x) and Ivanti Policy Secure allows an unauthenticated malicious user to send specially crafted re | Apr 4, 2024 | 9.8 | 41 | NO | NO |
CVE-2026-44893HIGH Netty is a network application framework for development of protocol servers and clients. In netty-codec-haproxy prior to versions 4.1.135.Final and 4.2.15.Final, when decoding a P | Jun 12, 2026 | 7.5 | 34 | NO | NO |
CVE-2026-20187HIGH As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco RoomOS engineering team has conducted a comprehensive internal security review. This revi | Jul 15, 2026 | 7.5 | 33 | NO | NO |
CVE-2025-13022CRITICAL Incorrect boundary conditions in the Graphics: WebGPU component. This vulnerability was fixed in Firefox 145 and Thunderbird 145. | Nov 11, 2025 | 9.8 | 33 | NO | NO |
CVE-2025-13023CRITICAL Sandbox escape due to incorrect boundary conditions in the Graphics: WebGPU component. This vulnerability was fixed in Firefox 145 and Thunderbird 145. | Nov 11, 2025 | 9.8 | 32 | NO | NO |
CVE-2025-13026CRITICAL Sandbox escape due to incorrect boundary conditions in the Graphics: WebGPU component. This vulnerability was fixed in Firefox 145 and Thunderbird 145. | Nov 11, 2025 | 9.8 | 31 | NO | NO |
CVE-2025-13021CRITICAL Incorrect boundary conditions in the Graphics: WebGPU component. This vulnerability was fixed in Firefox 145 and Thunderbird 145. | Nov 11, 2025 | 9.8 | 31 | NO | NO |
Exploit activity across CVEs assigned to this CWE, including CVEs that carry other CWE assignments.
Social posts that mention CVE IDs assigned to this CWE. This is assigned-CVE activity, not mentions of the CWE label itself.
Media articles that mention CVE IDs assigned to this CWE. This is assigned-CVE coverage, not mentions of the CWE label itself.